musicfrisk Posted September 5, 2003 Posted September 5, 2003 My PC has been infected with the Sobig virus 3 days in a row now - I know this because I clean once a day. My problem is this, I know I'm not clicking on the .pif file. Here's what is strange though, I've been getting sobig e-mails in my Horde inbox - but they are sans attachement. My only guess if the file is opening automatically in Horde? This makes no sense I know, but it the only way I can explain the 3 day in a row infection. So I'm going to ask for help from the gang. If you use Horde and got some of the known subjects for sobig, could you please run your anti-virus (if you don't daily) and report back if you are infected. If anyone else can look at how I might be getting infected without clicking on an attachement, please advise. If anyone can look into the Horde question in general that woudl be great. Thanks for your time and help. Quote
TCH-JimE Posted September 5, 2003 Posted September 5, 2003 Hi, You can not get a virus simply by looking at the file on your screen (not opening it up that is) in horde. Its logistically impossible. However, what I am guessing is that your running XP. Am I correct? Jim Quote
TCH-JimE Posted September 5, 2003 Posted September 5, 2003 Well if you are (actually this can go back to ME, so thats ME, 2000 and XP), its because its re-infecting itself from System restore. You will need to give yourself permissions to the restore area in order to delete the infected virus. You might even have to go to Tools>Folder Options>View>Advanced settings and untick the "hide operating system files". I suggest you run a full virus sweep across your systems after doing this and set your virus scanner up to sweep for viruses from net downloads. You may also have to look at the security permissions inside of IE too and change some of these if they are too relaxed. Jim Quote
musicfrisk Posted September 5, 2003 Author Posted September 5, 2003 Hi, You can not get a virus simply by looking at the file on your screen (not opening it up that is) in horde. Its logistically impossible. However, what I am guessing is that your running XP. Am I correct? Jim Yes, I am running XP Home. Why you ask? Quote
musicfrisk Posted September 5, 2003 Author Posted September 5, 2003 Well if you are (actually this can go back to ME, so thats ME, 2000 and XP), its because its re-infecting itself from System restore. You will need to give yourself permissions to the restore area in order to delete the infected virus. You might even have to go to Tools>Folder Options>View>Advanced settings and untick the "hide operating system files". I suggest you run a full virus sweep across your systems after doing this and set your virus scanner up to sweep for viruses from net downloads. You may also have to look at the security permissions inside of IE too and change some of these if they are too relaxed. Jim like which setting in IE? Quote
natimage Posted September 5, 2003 Posted September 5, 2003 Music Frisk...I don't know that I can answer your last question...maybe go into Tools/Internet Options/Advanced Tab and make sure all of that is set up with security in mind. Specifically, I would not know what to change. However, Microsoft has a patch out for IE 6 and for XP that has to do with the SOBIG virus. I would download those if I were you. I agree that it is probably re-infecting itself. I had two viruses that did that and drove me nuts. One of the ones I had, Pest Patrol found one of the files that was part of the virus, but it didn't find the file that was the actual "installer". I found it by chance. Good luck... Tracy Quote
TCH-JimE Posted September 8, 2003 Posted September 8, 2003 Hi, Find your "my computer tab" (mines in the start bar) and right click and click on "properties". Then click on system restore Jim Quote
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.